PHP patch exec_dir

Progamming language PHP allows one to limit executing of external commands via configuration directive safe_mode. This directive should contain full path to a directory conatining programs which PHP script can run. If the script tries to execute a command not located in this directory, the command is not executed. This configuration directive is active only if safe mode is enabled, which means more and sometimes unwanted restrictions to users.

PHP has no known possibility to limit executing of external commands with disabled safe mode. Teherefore, here is a patch adding special directive exec_dir straightly into PHP. This directive is very similar to safe_mode_exec_dir, but safe mode has not to be enabled.

This patch limits executing commands via functions from the exec family, i. e. exec(), system() or popen().

Rezensionen

Es sind noch keine Kommentare vorhanden.

Hier Kannst Du einen Kommentar verfassen


Bitte gib mindestens 10 Zeichen ein.
Wird geladen... Bitte warte.
* Pflichtangabe
ANG GES G P
Ein Modul um eine Topsite-Bewertung zu machen. Einfach in den Ordner "module" laden und in der Administration aktivieren. Der User kann seinen Ban ...
ANG GES G P
Portscan auf PHP Basis zum schnellen testen der Firewall
ANG GES G P
This is just a handy little class (with example) that allows a user browse a unix file system when PHP is not in safe mode. This is a script that ...
ANG GES G P
A platform-idependent, web-based, secure application for storing and retrieving usernames and passwords.
ANG GES G P
php_pam is a shared library which provides PAM (Pluggable Authentication Modules) bindings for PHP. The package includes sample PHP code and a hel ...
ANG GES G P
Das Programm ersetzt die Namen sämtlicher Konstanten, Klassen, Funktionen und Variablen durch ihren MD5 verschlüsselten Wert und die Werte von T ...
ANG GES G P
The Lib2 PHP Library provides user authentication via sessions, statistics collection, forms management, an interface to SQL engines, formatting t ...
ANG GES G P
Mantis Captcha v1.0, ist ein Vollanpassbares Captcha Script das von jedem Benutzer/User erkannt und Gelesen werden kann.   Keine Geschnörgelt ...
315 x angesehen
0 x gemerkt
Details zur Anzeige
ANG GES G P
Anfrage stellen

Du bist nicht als Benutzer angemeldet. Bitte gebe Deinen Namen und E-Mailadresse an!

Wird geladen... Bitte warte.
Details zur Anbieter